Prerequisites for configuring KCD for BlackBerry Dynamics apps
|
Item |
Description |
|---|---|
|
Active Directory port |
Port 88 on the Active Directory service must be accessible by all UEM servers. |
|
Kerberos environment |
The Kerberos environment must include the following components:
|
|
krb5.conf file |
Your UEM environment requires a krb5.conf file with values specific to your KDC. It must include the following minimum settings: AES Keytab file:
If you use an AES Keytab file, you must create the file with an AES flag of
The value you specify for You must specify the location of the krb5.conf file in Settings > BlackBerry Dynamics > Properties (see Configure KCD for BlackBerry Dynamics apps). For more information about constructing a krb5.conf file, see the MIT Kerberos Documentation. |
|
Service Principal Names (SPN) |
Create SPNs for all HTTP services, including the BlackBerry Enterprise Mobility Server. You must set an SPN for every target resource you want devices to have access to. For more information about how to create and modify SPNs, see Register a Service Principal Name for Kerberos Connections. |
|
Multi-realm Kerberos environments |
Note: If you upgrade from UEM version 12.19 or earlier to UEM 12.20 or later, you must do the following:
|